CVE-2006-3331

Opera before 9.0 does not reset the SSL security bar after displaying a download dialog from an SSL-enabled website, which allows remote attackers to spoof a trusted SSL certificate from an untrusted website and facilitates phishing attacks.

Date published : 2006-06-30

http://www.securityfocus.com/bid/18692

http://www.securityfocus.com/archive/1/438634/100/0/threaded